Kubernetes Pods Are Inheriting Too Many Permissions
ID: 977570f9-6cec-5b71-a35f-4d462782115c
STIX ID: report--977570f9-6cec-5b71-a35f-4d462782115c
Feed Name: Dark Reading
Threat Score
The SANS Institute report warns that default Kubernetes behavior allowing pods to inherit node permissions can enable cloud privilege escalation—via SSRF or malicious container images accessing instance metadata—potentially compromising entire clusters; it recommends adopting workload identity and OIDC federation across managed services (EKS, AKS, GKE) to enforce least privilege and reduce attack surface, with findings to be presented at RSAC 2025.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
